5.5

CVSS3.1

CVE-2025-38336 - ata: pata_via: Force PIO for ATAPI devices on VT6415/VT6330

In the Linux kernel, the following vulnerability has been resolved: ata: pata_via: Force PIO for ATAPI devices on VT6415/VT6330 The controller has a hardware bug that can hard hang the system when doing ATAPI DMAs without any trace of what happened. Depending on the device attached, it can also p…

πŸ“… Published: July 10, 2025, midnight πŸ”„ Last Modified: Jan. 2, 2026, 3:30 p.m.

7.8

CVSS3.1

CVE-2025-38288 - scsi: smartpqi: Fix smp_processor_id() call trace for preemptible kernels

In the Linux kernel, the following vulnerability has been resolved: scsi: smartpqi: Fix smp_processor_id() call trace for preemptible kernels Correct kernel call trace when calling smp_processor_id() when called in preemptible kernels by using raw_smp_processor_id(). smp_processor_id() checks to…

πŸ“… Published: July 10, 2025, midnight πŸ”„ Last Modified: March 17, 2026, 1:36 p.m.

5.5

CVSS3.1

CVE-2025-38281 - wifi: mt76: mt7996: Add NULL check in mt7996_thermal_init

In the Linux kernel, the following vulnerability has been resolved: wifi: mt76: mt7996: Add NULL check in mt7996_thermal_init devm_kasprintf() can return a NULL pointer on failure,but this returned value in mt7996_thermal_init() is not checked. Add NULL check in mt7996_thermal_init(), to handle k…

πŸ“… Published: July 10, 2025, midnight πŸ”„ Last Modified: Nov. 19, 2025, 9:59 p.m.

10

CVSS3.1

CVE-2025-47812 -

In Wing FTP Server before 7.4.4. the user and admin web interfaces mishandle '\0' bytes, ultimately allowing injection of arbitrary Lua code into user session files. This can be used to execute arbitrary system commands with the privileges of the FTP service (root or SYSTEM by default). This is thu…

πŸ“… Published: July 10, 2025, midnight πŸ”„ Last Modified: Feb. 26, 2026, 5:50 p.m.

5.5

CVSS3.1

CVE-2025-38310 - seg6: Fix validation of nexthop addresses

In the Linux kernel, the following vulnerability has been resolved: seg6: Fix validation of nexthop addresses The kernel currently validates that the length of the provided nexthop address does not exceed the specified length. This can lead to the kernel reading uninitialized memory if user space…

πŸ“… Published: July 10, 2025, midnight πŸ”„ Last Modified: Dec. 19, 2025, 5:58 p.m.

5.5

CVSS3.1

CVE-2025-38312 - fbdev: core: fbcvt: avoid division by 0 in fb_cvt_hperiod()

In the Linux kernel, the following vulnerability has been resolved: fbdev: core: fbcvt: avoid division by 0 in fb_cvt_hperiod() In fb_find_mode_cvt(), iff mode->refresh somehow happens to be 0x80000000, cvt.f_refresh will become 0 when multiplying it by 2 due to overflow. It's then passed to fb_c…

πŸ“… Published: July 10, 2025, midnight πŸ”„ Last Modified: Dec. 19, 2025, 5:58 p.m.

5.5

CVSS3.1

CVE-2025-38302 - block: don't use submit_bio_noacct_nocheck in blk_zone_wplug_bio_work

In the Linux kernel, the following vulnerability has been resolved: block: don't use submit_bio_noacct_nocheck in blk_zone_wplug_bio_work Bios queued up in the zone write plug have already gone through all all preparation in the submit_bio path, including the freeze protection. Submitting them t…

πŸ“… Published: July 10, 2025, midnight πŸ”„ Last Modified: Nov. 19, 2025, 8:13 p.m.

7.8

CVSS3.1

CVE-2025-38270 - net: drv: netdevsim: don't napi_complete() from netpoll

In the Linux kernel, the following vulnerability has been resolved: net: drv: netdevsim: don't napi_complete() from netpoll netdevsim supports netpoll. Make sure we don't call napi_complete() from it, since it may not be scheduled. Breno reports hitting a warning in napi_complete_done(): WARNING…

πŸ“… Published: July 10, 2025, midnight πŸ”„ Last Modified: Nov. 20, 2025, 4:49 p.m.

5.5

CVSS3.1

CVE-2025-38296 - ACPI: platform_profile: Avoid initializing on non-ACPI platforms

In the Linux kernel, the following vulnerability has been resolved: ACPI: platform_profile: Avoid initializing on non-ACPI platforms The platform profile driver is loaded even on platforms that do not have ACPI enabled. The initialization of the sysfs entries was recently moved from platform_prof…

πŸ“… Published: July 10, 2025, midnight πŸ”„ Last Modified: Nov. 19, 2025, 8:42 p.m.

5.5

CVSS3.1

CVE-2025-38273 - net: tipc: fix refcount warning in tipc_aead_encrypt

In the Linux kernel, the following vulnerability has been resolved: net: tipc: fix refcount warning in tipc_aead_encrypt syzbot reported a refcount warning [1] caused by calling get_net() on a network namespace that is being destroyed (refcount=0). This happens when a TIPC discovery timer fires d…

πŸ“… Published: July 10, 2025, midnight πŸ”„ Last Modified: Dec. 18, 2025, 4:58 p.m.
Total resulsts: 346929
Page 4473 of 34,693
Β« previous page Β» next page
Filters